for Windows contains the password used to log on to an SAP system, which might
allow an attacker to get hold of the password and impersonate the affected
user. As a result, it has a high impact on the confidentiality but there is no
impact on the integrity and availability.
Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-38120 | Under certain conditions, the memory of SAP GUI for Windows contains the password used to log on to an SAP system, which might allow an attacker to get hold of the password and impersonate the affected user. As a result, it has a high impact on the confidentiality but there is no impact on the integrity and availability. |
Wed, 22 Jan 2025 19:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Sap
Sap gui For Windows |
|
| Weaknesses | NVD-CWE-Other | |
| CPEs | cpe:2.3:a:sap:gui_for_windows:8.0:*:*:*:*:*:*:* | |
| Vendors & Products |
Sap
Sap gui For Windows |
Status: PUBLISHED
Assigner: sap
Published:
Updated: 2024-08-02T04:26:16.037Z
Reserved: 2024-06-26T09:58:24.096Z
Link: CVE-2024-39600
Updated: 2024-07-09T15:13:50.250Z
Status : Analyzed
Published: 2024-07-09T05:15:13.147
Modified: 2026-06-17T07:42:18.483
Link: CVE-2024-39600
No data.
OpenCVE Enrichment
No data.
-
CWE-200
Exposure of Sensitive Information to an Unauthorized Actor
- NVD-CWE-Other
EUVD